Description |
This article describes why FortiAnalyzer stops receiving real-time logs while logs are being restored from backup. |
Scope | FortiAnalyzer. |
Solution |
When restoring logs on FortiAnalyzer, users may notice that real-time logs are not received until the restoration is complete.
This is because certain logging daemons are stopped when log restoration is initiated.
This can also be verified by checking the PID and uptime of the daemons.
Before restore:
After restore:
The daemons will restart once the restore process is complete:
The following daemons are seen to be restarted when performing logs restoration:
fortilogd |
Labels: